qfs-ledger[.]io[.]qfs-ledger[.]us
“QFS LEDGER - QFS VAULT | Multi-Currency Crypto Account”
qfs-ledger.io.qfs-ledger.us — Неперевірений. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 12/91 (BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data); URLQuery 2 alerts; PhishDestroy score 90/100. Реєстратор: ENOM.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain www.qfs-ledger.io.qfs-ledger.us is currently active and poses a high risk due to its brand impersonation of Ledger, a well-known cryptocurrency wallet provider. The domain was created on March 05, 2025, and is registered through ENOM, INC. It resolves to the IP address 194.36.191.196, which may be associated with malicious activities, given the context of the domain's purpose. Technical analysis reveals the use of Tailwind CSS, LiteSpeed, Unpkg, and HTTP/3 technologies, indicating that the infrastructure is relatively modern and capable of delivering dynamic content.
This domain has been flagged by 9 out of 95 security vendors on VirusTotal, suggesting that while a minority of vendors recognize it as potentially harmful, a significant number do not currently flag it as a threat. Additionally, it appears on one security blocklist and has been specifically blocked by PhishDestroy, further corroborating its malicious intent. The Gridinsoft trust score for this domain is 0 out of 100, indicating a complete lack of trustworthiness. The presence of an SSL certificate issued by Let's Encrypt does not imply safety, as malicious domains often use SSL to lend legitimacy to their operations.
Defenders should take immediate action to block this domain and any associated IP addresses to prevent potential phishing attacks targeting Ledger users. Monitoring for any communications related to this domain within their networks is critical, as users may unknowingly interact with it. Furthermore, educating users about the risks of brand impersonation and the importance of verifying URLs before providing sensitive information is essential in mitigating the impact of such threats.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | www.qfs-ledger.io.qfs-ledger.us |
malicious | Sinkholed |
| DNS4EU | www.qfs-ledger.io.qfs-ledger.us |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of qfs-ledger.io.qfs-ledger.us · checked Jul 12, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога